How to configure log automation to e-mail log categories to different e-mail addresses

Description

How to configure log automation to e-mail log categories to different e-mail addresses respectively in SonicOS.

Resolution for SonicOS 7.X

This release includes significant user interface changes and many new features that are different from the SonicOS 6.5 and earlier firmware. The below resolution is for customers using SonicOS 7.X firmware.



  1. Configure Log automation
    To configure Log Automation ,please follow the How to e-mail logs and alerts via SMTP server.
  2. Navigate to Device | Log | settings 
    Image
  3. Click on the 'edit' icon on any of the log categories and it will shown as follows :
    Image
     Where the symbol
    EnabledImage
    Disabled Image
    Leave unchanged Image

  • From the Event Priority menu list, select the priority that want.
  • Under Enable Redundancy Filter Interval:
  • If you want to display the log events in the Log Monitor, select the Enable button for the Display Events in Log Monitor option.
  • In the Display Events in Log Monitor box, enter the number of seconds for the Log Monitor to refresh its data. The range is 0 to 86400.
  • If you want to send events as email alerts, select the Enable button for the Send Events as Email Alerts option.
  • In the Send Events as Email Alerts box, enter the number of seconds for the Log Monitor to refresh its data. The range is 0 to 86400.
  • If you want to report events via Syslog, select the Enable button for the Report Events via Syslog option.
  • In the Report Events via Syslog box, enter the number of seconds for the Log Monitor to refresh its data. The range is 0 to 86400.
  • If you want to send the global event log via Email, enter the Email address in the Send Log Digest to Email Address box.(Over here ,select a different email address other than the email address mentioned in the syslog settings to which the considered category log emails will be sent) .
  • If you want to send alerts via Email based on the global settings in this dialog, enter the Email address in the Send Alerts to E-mail Address box.
  • If you want to keep using this Email address even when you change other values in this dialog, select the Leave Unchanged option.
  • If you want to use a specific color for the global events log, Uncheck the Leave Unchanged option. The color selection matrix appears.
  • Select the color you want.
  • Click Save.


Resolution for SonicOS 6.5

This release includes significant user interface changes and many new features that are different from the SonicOS 6.2 and earlier firmware. The below resolution is for customers using SonicOS 6.5 firmware.


  1. Configure log automation
    To configure Log Automation ,please follow the How to e-mail logs and alerts via SMTP server.
  2. Navigate to Manage | Log Settings | Base setup.

    Image
  3. Click on the 'edit' icon on any of the log categories and it will shown as follows :

    Image

    Where the symbols
    Image means LeaveUnchanged ,

    ImagemeansDisable 
    Imagemeans Enable 
  • From the Event Priority menu list, select the priority that want.
  • Under Enable Redundancy Filter Interval:
  • If you want to display the log events in the Log Monitor, select the Enable button for the Display Events in Log Monitor option.
  • In the Display Events in Log Monitor box, enter the number of seconds for the Log Monitor to refresh its data. The range is 0 to 86400.
  • If you want to send events as email alerts, select the Enable button for the Send Events as Email Alerts option.
  • In the Send Events as Email Alerts box, enter the number of seconds for the Log Monitor to refresh its data. The range is 0 to 86400.
  • If you want to report events via Syslog, select the Enable button for the Report Events via Syslog option.
  • In the Report Events via Syslog box, enter the number of seconds for the Log Monitor to refresh its data. The range is 0 to 86400.
  • If you want to send the global event log via Email, enter the Email address in the Send Log Digest to Email Address box.(Over here ,select a different email address other than the email address mentioned in the syslog settings to which the considered category log emails will be sent) .
  • If you want to send alerts via Email based on the global settings in this dialog, enter the Email address in the Send Alerts to E-mail Address box.
  • If you want to keep using this Email address even when you change other values in this dialog, select the Leave Unchanged option.
  • If you want to use a specific color for the global events log, Uncheck the Leave Unchanged option. The color selection matrix appears.
  •  Select the color you want.
  • Click Apply.


Resolution for SonicOS 6.2 and Below

The below resolution is for customers using SonicOS 6.2 and earlier firmware. For firewalls that are generation 6 and newer we suggest to upgrade to the latest general release of SonicOS 6.5 firmware.


  1. Configure log automation
    To configure Log Automation ,please follow the How to e-mail logs and alerts via SMTP server.
  2. Navigate to  Log | Settings:


    Image
  3. Click on the 'edit' icon on any of the log categories and it will shown as follows :


Image
Where the symbols
 
Imagemeans LeaveUnchanged 
Image
meansDisable 
Image
means Enable 

 1.> From the Event Priority menu list, select the priority that want.

Under Enable Redundancy Filter Interval:

2.> If you want to display the log events in the Log Monitor, select the Enable button for the Display Events in Log Monitor option.

3.> In the Display Events in Log Monitor box, enter the number of seconds for the Log Monitor to refresh its data. The range is 0 to 86400.

4.> If you want to send events as email alerts, select the Enable button for the Send Events as Email Alerts option.

5.> In the Send Events as Email Alerts box, enter the number of seconds for the Log Monitor to refresh its data. The range is 0 to 86400.

6. If you want to report events via Syslog, select the Enable button for the Report Events via Syslog option.

7.> In the Report Events via Syslog box, enter the number of seconds for the Log Monitor to refresh its data. The range is 0 to 86400.

8.> If you want to send the global event log via Email, enter the Email address in the Send Log Digest to Email Address box.(Over here ,select a different email address other than the email address mentioned in the syslog settings to which the considered category log emails will be sent) .

9.> If you want to send alerts via Email based on the global settings in this dialog, enter the Email address in the Send Alerts to E-mail Address box.

10.> If you want to keep using this Email address even when you change other values in this dialog, select the Leave Unchanged option.

11.> If you want to use a specific color for the global events log, Uncheck the Leave Unchanged option. The color selection matrix appears.

12.> Select the color you want.

13.> Click Apply.

Related Articles

  • SonicOS 8.1.0 FAQ
    Read More
  • SonicWall GEN8 TZs and GEN8 NSas Settings Migration
    Read More
  • Getting started with SonicWall firewalls
    Read More
not finding your answers?